Audit Logging
Signed audit records for every decision, syslog and JSON export, and customer-set retention.
Signed decision records
Every PASS, CHALLENGE and INTERRUPT decision produces a signed audit record so tampering can be detected.
Administrative actions are written to an append-only audit log that cannot be edited or deleted by users.
Export
Audit records export via syslog (RFC 5424) and as JSON over HTTPS, compatible with standard SIEM platforms.
Retention
Retention is set by the customer, from 30 days up to 7 years.
Event delivery
To receive events in your own systems, see Webhooks.